SOC-HUB // OPERATIONAL Tue 25 Aug 2026 · UTC
⚠ Live Threats
Rapid7 Cybersecurity · Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)CISA · CISA Adds One Known Exploited Vulnerability to CatalogZDI: Published · ZDI-26-590: libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityZDI: Published · ZDI-26-607: Microsoft Office HTML Injection Information Disclosure VulnerabilityZDI: Published · ZDI-26-595: Foxit PDF Reader Annotation Use-After-Free Remote Code Execution VulnerabilityZDI: Published · ZDI-26-602: Foxit PDF Reader Doc Object Use-After-Free Remote Code Execution VulnerabilityZDI: Published · ZDI-26-594: NVIDIA Megatron Bridge load_model_config Code Injection Remote Code Execution VulnerabilityZDI: Published · ZDI-26-587: Ashlar-Vellum Cobalt VS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
OPERATIONAL // BLUE TEAM

The one stop shop for SOC analysts.

Knowledge base, playbooks, live threat intel, tools and jobs. Everything a defender needs to triage faster and grow from L1 to L3, in one place.

1
KB Articles
0
IR Playbooks
0
Tools
0
Open Roles
// From Team SOC Analysts

Latest analysis

All articles
// Uncategorized
Uncategorized

Hello world!

Welcome to WordPress. This is your first post. Edit or delete it, then start writing!

· 1 min read
// JOIN THE SHIFT

Bookmark SOC-Hub. Start your next shift here.

News, CVEs, playbooks and tradecraft, refreshed continuously and curated for working analysts.

Start reading →